Latest / Diplomacy and International Relations / Cyber Diplomacy, AI, and Energy Security
Transcript
- 0:00Welcome everyone. You are tuning into Diplomacy
- 0:02and International Relations by Bastin Freiborg.
- 0:06We've got a really complex set of source materials in front of
- 0:08us today, all focused on, well, the new frontier of
- 0:11international relations. We're talking about how cyber
- 0:14diplomacy is changing everything.
- 0:16And the massive shift being caused by artificial
- 0:18intelligence. Exactly.
- 0:20And the governance frameworks that are just struggling to keep
- 0:22pace with all of it. So our mission here is to
- 0:25synthesize this for you to give you a clear picture of the new
- 0:29rules of the road in the digital world.
- 0:31And hey, if you value this kind of analysis and want to support
- 0:34what we do, please make sure you follow and subscribe.
- 0:37There's also a small monthly subscription option on Spotify
- 0:40or Apple Podcast for some extra exclusive content.
- 0:43That link is right in the description.
- 0:45The main theme that just jumps out from all this material is
- 0:47the complete digital transformation of international
- 0:51relations. We are so far past cybersecurity
- 0:54being some niche technical topic.
- 0:56Oh, absolutely. It is now completely central to
- 0:59global security, to geopolitics, even just to keeping the lights
- 1:04on. So we really need to figure out
- 1:06who the key players are, what the new tools of conflict
- 1:09actually look like, and how governance is trying to manage
- 1:12this this incredibly volatile space.
- 1:15And you can almost trace the beginning of this whole field
- 1:18back to one specific moment. The world really woke up after
- 1:21the 2007 cyber attacks on Estonia.
- 1:24And what's really interesting, especially for our listeners, is
- 1:27the surprising role that smaller, digitally savvy
- 1:30countries, you know, like Denmark and Estonia, are now
- 1:32playing. They're setting the agenda.
- 1:34They really are. So let's unpack this.
- 1:36Let's start right there with that origin story.
- 1:37Right. So cyber diplomacy is a field.
- 1:39It was really born out of pure necessity and talent, and that
- 1:432007 moment was the trigger. The attacks were sparked by a
- 1:47political decision, a really contentious one, to move a
- 1:50Soviet era War Memorial. And that sparked a digital
- 1:53retaliation. A massive one.
- 1:54It was politically motivated and deeply damaging.
- 1:57How? Damaging.
- 1:58Are we talking? Well, it was enough to cripple
- 2:01huge parts of Estonia's digital infrastructure.
- 2:04I mean, government websites, banks, media outlets, all of it
- 2:08went down. So it was a proof of concept in
- 2:10a way. Exactly.
- 2:11It showed the entire world that a country could be well
- 2:15effectively neutralized early, severely hobbled without a
- 2:18single shot being fired. It proved in really stark terms
- 2:23that digital resilience was now critical to national survival.
- 2:26And the sources show that Estonia didn't just bounce back,
- 2:29they did something much smarter. They took this horrible
- 2:31experience and basically turned it into diplomatic capital.
- 2:35They did. They turned a defensive failure
- 2:37into a huge diplomatic strength. So how did they manage to get
- 2:40that kind of outsized influence? Well, first, they already had a
- 2:43highly advanced digital society to build on.
- 2:46But crucially, they set up a dedicated department for cyber
- 2:49diplomacy. It's led by their ambassador at
- 2:52large, Tanel Sep. This very focused, high level
- 2:56effort gave Estonia a huge footprint in all the
- 2:59international talks about cyber governance.
- 3:01It's a perfect example of expertise driving influence, not
- 3:04just size. It's the new rule in the digital
- 3:06domain. Expertise and resilience matter
- 3:09more than traditional military or economic power.
- 3:12So that expertise gave them legitimacy and that turned into
- 3:15real diplomatic power. OK, that sets the stage
- 3:18perfectly for the next part, the formal rules.
- 3:21How do you govern a space where the conflict moves so much
- 3:24faster than the negotiations? Well, the main goal for, GOSH,
- 3:28the last two decades has been to develop these international
- 3:31norms for responsible state behavior in cyberspace.
- 3:35The big win the foundation is that everyone agrees that
- 3:38existing international law, specifically the UN Charter,
- 3:41applies to cyberspace. Right, but applying it is the
- 3:44hard part. That was the challenge,
- 3:46institutionalizing that consensus.
- 3:48And the sources point to a huge, very recent step forward on
- 3:51that. Front a massive 1.
- 3:52The big achievement was the adoption of the UN Permanent
- 3:55Global Mechanism in July 2025. This is huge because after
- 4:00nearly 20 years of really difficult negotiations. 20
- 4:03years, Why so long? Because things like attribution,
- 4:06proving who actually launched an attack, and then agreeing on
- 4:09what counts as a state sponsored act of aggression, it's
- 4:12incredibly difficult and it risks major geopolitical
- 4:16escalation. So what does a standing body do
- 4:19that the old ad hoc groups couldn't?
- 4:22It changes the entire conversation.
- 4:24It moves beyond just writing down norms.
- 4:26It creates a permanent, institutionalized place for
- 4:29dialogue, for capacity building, and critically, for confidence
- 4:33building measures. It ensures the conversation is
- 4:36continuous, not just a one off negotiation every few years.
- 4:39OK, so that's the UN, the state to state approach, but cyber is
- 4:43different. It's not just about governments.
- 4:45Absolutely not. And that's where things like the
- 4:47Paris Call for trust and security in cyberspace come in.
- 4:50It was launched back in November 2018.
- 4:52And that brings in private companies.
- 4:53Exactly. States yes, but also the private
- 4:56companies who actually build and run the Internet and civil
- 4:58society organizations. You need that combination
- 5:01because at the end of the day, the private sector owns and
- 5:05operates most of this critical infrastructure.
- 5:07And then regionally you have the EU stepping up.
- 5:10They have something called the EU Cyber Diplomacy Toolbox.
- 5:14Sounds like it gives them some leverage.
- 5:15It does. It gives them a formal playbook
- 5:17for diplomatic, political and economic responses.
- 5:21That includes sanctions that can be deployed when a member state
- 5:23or critical infrastructure is hit.
- 5:25It's designed to be a coordinated proportional
- 5:28response that isn't military. But has it been tested against a
- 5:32major state actor? I mean, the big test case was
- 5:35the SolarWinds attack, which the US pinned on Russia's SVR.
- 5:38It was a huge test and it showed the coordination can work even
- 5:42if deterrence is still a really complex problem.
- 5:45The response was fast and coordinated across the Atlantic.
- 5:48The US named Russia, issued sanctions, expelled diplomats.
- 5:51And the EU backed them up. Immediately a strong declaration
- 5:54of solidarity coordinated with the US sanctions.
- 5:57Now is it a perfect deterrent for high level espionage?
- 5:59No. But it demonstrated a united
- 6:01political front. OK, let's pivot from espionage
- 6:05to, well, actual conflict. We have to talk about the
- 6:08intersection of geopolitics and critical infrastructure, the
- 6:12energy sector specifically. This is where a global threat
- 6:15becomes a very local problem. The energy sector is a prime
- 6:18target. It has to be.
- 6:19It's increasingly run by digital control systems, so cyberattacks
- 6:23are now tools of power projection, of asymmetric
- 6:27warfare. The goal is to create chaos or
- 6:30just steal strategic plans. And we have a perfect and
- 6:33frankly terrifying Danish case study on this.
- 6:36In May 2023, Denmark was hit by its largest cyberattack on
- 6:40record. This was an abstract Russian
- 6:42hackers hit 22 Danish power companies. 22 The goal of that
- 6:46attack was to get comprehensive access to Denmark's entire
- 6:49decentralized power grid, right? They got in by exploiting known
- 6:52flaws, command injection, flaws in network gear, and then moving
- 6:55to other unpatched systems. It really highlights a paradox,
- 6:58doesn't it? A decentralized grid is supposed
- 7:00to be more resilient. To a physical attack, yes, but
- 7:03if the digital control systems are compromised across all those
- 7:05different nodes, you can get a cascading failure from a cyber
- 7:09attack that is incredibly damaging.
- 7:11And the data on who's doing the attacking is interesting.
- 7:14The general trend is, you know, Russia and China as origins. the
- 7:18US is a target. But for energy, it seems more
- 7:20specialized. That's right, the cluster
- 7:22analysis shows that for energy focused attacks the patterns are
- 7:25different. While BRICS countries might
- 7:27dominate non energy threats, the attacks on energy infrastructure
- 7:30often concentrated differently, often targeting NATO or EU
- 7:35countries for obvious geopolitical reasons.
- 7:38So with energy systems under constant threat, how are
- 7:41countries organizing to defend themselves in real time?
- 7:44The talent mechanism is a really interesting modern model for
- 7:47that. It was launched in December 2023
- 7:49by 11 countries, Canada, Denmark, Estonia among them.
- 7:53It's specifically focused on coordinating cyber assistance
- 7:56for Ukraine. To help them defend their energy
- 7:58grid from Russia. Precisely direct aid against
- 8:01Russia's persistent attacks on their infrastructure.
- 8:03And it's not a small effort, raising 200 million in its first
- 8:07year alone. That's a very Direct Line from
- 8:10diplomatic agreement to actual physical defense.
- 8:15All right, let's shift to the big accelerator in all of this
- 8:18artificial intelligence. It feels like AI is a total
- 8:21paradox. Here.
- 8:22It's both the most powerful weapon and the most critical
- 8:25shield. That's a perfect way to put it.
- 8:27AI applications, machine learning, natural language
- 8:30processing. They're already completely
- 8:32invade in modern cyber diplomacy on the defensive side.
- 8:36AI is just incredible at processing the huge volumes of
- 8:39unstructured data you need for predictive analytics.
- 8:41And we have some hard numbers on that.
- 8:43Generative AI models are now being used to sift through raw
- 8:45threat reports. You know, just text descriptions
- 8:47of attacks, and turn them into structured, usable intelligence.
- 8:50Correct. The analysis showed one Gen.
- 8:52AI model achieved 84% accuracy in classifying energy related
- 8:56incidents. But the key is speed and recall.
- 8:59The AI boosted analysis speed and got 77% recall on key data
- 9:03points. The old rule based systems only
- 9:05managed 66%. So that 11% difference means
- 9:08defenders can react to more incidents faster.
- 9:11But, and this is a huge but, Despite that efficiency, the
- 9:15sources reveal this staggering counter narrative when you look
- 9:19at actual threat detection. It is genuinely alarming.
- 9:22The static machine learning tools, the kind of thing used by
- 9:25big commercial security vendors like Akronis or Sentinelone.
- 9:29They only detected about 46.8% of malicious code related to
- 9:34these specialized energy threats.
- 9:36Less than half. I mean, that's shocking.
- 9:37They were completely outperformed by traditional
- 9:40antivirus engines which caught around 88.4%.
- 9:44So the big question is why are these hyped up cutting edge AI
- 9:48tools failing so badly in such a critical sector?
- 9:51What is going on there? It suggests the adversaries are
- 9:54getting very, very specific. They're customizing their
- 9:56malware. The payloads are low volume,
- 9:59maybe polymorphic, and they're designed explicitly to get
- 10:02around the specific behavioral models that these static ML
- 10:05tools are trained on. They're adapting faster than the
- 10:07defensive models can be updated. And while our defenses are
- 10:10struggling with that, the attackers are using AI without
- 10:12any hesitation. Absolutely.
- 10:14They're using the same large language models we are.
- 10:16We have documented cases a China based group called Sweet Specter
- 10:20is using open AI models for faster reconnaissance.
- 10:23And it gets more specific, right?
- 10:24Much more in Iranian affiliated group Cyber AV 3 Angers is using
- 10:29GT models to research programmable logic controllers
- 10:33LCS. Those are the industrial systems
- 10:35that run water plants and power grids.
- 10:37Another Iranian actor, Storm 081 scene, is using AI to debug
- 10:43their own malware. The implication is pretty clear
- 10:46with AI agents on both sides, you need some kind of governance
- 10:49framework and fast. How are we trying to put rules
- 10:51on these things before they just start fighting each other?
- 10:54The NIST Cybersecurity Framework 2 point O is a good starting
- 10:56point. It breaks security into six
- 10:58functions, govern, identify, protect, detect, respond, and
- 11:02recover. And researchers are now trying
- 11:04to map different AI agent types, Reactive cognitive Learning
- 11:07agents, to those specific functions.
- 11:09Give me an example of that. How does that work in practice?
- 11:11So a simple reactive agent, one that just follows rules, might
- 11:15be mapped to the detect function for real time anomaly detection,
- 11:19but a more advanced cognitive agent, one that can reason and
- 11:22plan, would be used for higher level strategy in the govern or
- 11:25respond functions. The idea is to make sure AI
- 11:28isn't just a chaotic black box. So that's about integrating AI
- 11:32responsibly now. But looking down the road, the
- 11:35really big, almost existential threat isn't current AI, it's
- 11:40the quantum threat. That's right, quantum computing
- 11:42could in theory break most of the encryption we rely on today
- 11:46for everything. Diplomatic cables, military
- 11:49systems, all of our financial transactions.
- 11:51This requires urgent international cooperation on
- 11:53post quantum crypto standards now, before the threat is fully
- 11:56realized. Which brings this whole
- 11:58conversation right back to where we started, back to the basic
- 12:00rules of the road. The foundational UN norms about
- 12:03critical infrastructure are more important than ever, regardless
- 12:06of the tech that. Foundation is everything you
- 12:09have to keep coming back to UN Norm 6.
- 12:11Who says nation should not damage or support activity that
- 12:14damages another nation's critical infrastructure?
- 12:16And norm 7, which requires states to take appropriate
- 12:18measures to rotect their own critical infrastructure.
- 12:21These two norms are the bedrock O.
- 12:23To sum it U, cyber diplomacy is just it's inseparable from
- 12:28geopolitics now. The future isn't about choosing
- 12:30between humans or AI, it's about finding the best combination of
- 12:34human judgement and artificial intelligence, especially in a
- 12:37field as high stakes as energy security.
- 12:39Which leads us perfectly to our final provocative thought for
- 12:42you to consider. Given that catastrophic failure
- 12:45of static machine learning tools to detect specialized malware in
- 12:48the energy sector, what does that really tell you about the
- 12:52risk of relying too heavily on so-called autonomous defenses?
- 12:56What does responsible DI deployment even look like if the
- 12:58machines are being outsmarted in our most critical sectors?
- 13:02And how do we guarantee that the human element always, always
- 13:05remains the final arbiter in this incredibly volatile domain?
- 13:09Thank you so much for joining us for this analysis.
- 13:11If you enjoyed this exploration, please be sure to follow the
- 13:13program and maybe take a moment to rate US five stars.
- 13:15It really helps us reach more people.
- 13:17We'll be back with another fascinating session very soon.